Forum Discussion
Mike_Nepomny
Jan 04, 2011Nimbostratus
ASM->Policy->get_violation_flags()
Hi,
I am getting all violations from the policy except "Attack signature detected". Are there any way to get "Attack signature detected" violation with ASM->Policy->get_violation_flags() or ...
hooleylist
Jan 06, 2011Cirrostratus
Hi Mike,
I haven't used iControl with ASM before, but maybe it looks like you can set an Attack Sig via iControl on an Object parameter. I don't see anything in the iControl ASM wiki for the attack sigs that would be applied to headers or URLs though. Nor do I see any references to attack sig sets (not the updates of the global attack signatures but the collection of signatures that can be assigned to a policy in groups). Anyone have ideas on this?
http://devcentral.f5.com/wiki/default.aspx/iControl/ASM__ObjectParams__add_or_update_object_param_with_characteristics.html
I guess the object could have a URI of * and param name of * for a global parameter.
http://devcentral.f5.com/wiki/default.aspx/iControl/ASM__ObjectParams__AttackSignatureDefinition.html
http://devcentral.f5.com/wiki/default.aspx/iControl/ASM__ObjectParams.html
Aaron
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects